Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mp6g-w483-p43g

Опубликовано: 11 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Improper Input Validation vulnerability in HTTP/2 request validation of Apache Traffic Server allows an attacker to create smuggle or cache poison attacks. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

Improper Input Validation vulnerability in HTTP/2 request validation of Apache Traffic Server allows an attacker to create smuggle or cache poison attacks. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

EPSS

Процентиль: 63%
0.00438
Низкий

7.5 High

CVSS3

Дефекты

CWE-20
CWE-444

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

Improper Input Validation vulnerability in HTTP/2 request validation of Apache Traffic Server allows an attacker to create smuggle or cache poison attacks. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

CVSS3: 7.5
nvd
больше 3 лет назад

Improper Input Validation vulnerability in HTTP/2 request validation of Apache Traffic Server allows an attacker to create smuggle or cache poison attacks. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

CVSS3: 7.5
debian
больше 3 лет назад

Improper Input Validation vulnerability in HTTP/2 request validation o ...

EPSS

Процентиль: 63%
0.00438
Низкий

7.5 High

CVSS3

Дефекты

CWE-20
CWE-444